CVE-2024-57373 |
Description: Cross Site Request Forgery vulnerability in LifestyleStore v.1.0 allows a remote attacker to execute arbitrary cod and obtain sensitive information.
EPSS Score: 0.04%
January 28th, 2025 (5 months ago)
|
CVE-2024-57276 |
Description: In Electronic Arts Dragon Age Origins 1.05, the DAUpdaterSVC service contains an unquoted service path vulnerability. This service is configured with insecure permissions, allowing users to modify the executable file path used by the service. The service runs with NT AUTHORITY\SYSTEM privileges, enabling attackers to escalate privileges by replacing or placing a malicious executable in the service path.
EPSS Score: 0.04%
January 28th, 2025 (5 months ago)
|
CVE-2024-57272 |
Description: SecuSTATION Camera V2.5.5.3116-S50-SMA-B20160811A and lower is vulnerable to Cross Site Scripting (XSS).
EPSS Score: 0.04%
January 28th, 2025 (5 months ago)
|
CVE-2024-57052 |
Description: An issue in youdiancms v.9.5.20 and before allows a remote attacker to escalate privileges via the sessionID parameter in the index.php file.
EPSS Score: 0.04%
January 28th, 2025 (5 months ago)
|
CVE-2024-56972 |
Description: An issue in Midea Group Co., Ltd Midea Home iOS 9.3.12 allows attackers to access sensitive user information via supplying a crafted link.
EPSS Score: 0.06%
January 28th, 2025 (5 months ago)
|
CVE-2024-56971 |
Description: An issue in Zhiyuan Yuedu (Guangzhou) Literature Information Technology Co., Ltd Shuqi Novel iOS 5.3.8 allows attackers to access sensitive user information via supplying a crafted link.
EPSS Score: 0.06%
January 28th, 2025 (5 months ago)
|
CVE-2024-56969 |
Description: An issue in Pixocial Technology (Singapore) Pte. Ltd BeautyPlus iOS 7.8.010 allows attackers to access sensitive user information via supplying a crafted link.
EPSS Score: 0.06%
January 28th, 2025 (5 months ago)
|
CVE-2024-56968 |
Description: An issue in Shenzhen Intellirocks Tech Co. Ltd Govee Home iOS 6.5.01 allows attackers to access sensitive user information via supplying a crafted payload.
EPSS Score: 0.06%
January 28th, 2025 (5 months ago)
|
CVE-2024-56967 |
Description: An issue in Cloud Whale Interactive Technology LLC. PolyBuzz iOS 2.0.20 allows attackers to access sensitive user information via supplying a crafted link.
EPSS Score: 0.06%
January 28th, 2025 (5 months ago)
|
CVE-2024-56966 |
Description: An issue in Shanghai Xuan Ting Entertainment Information & Technology Co., Ltd Qidian Reader iOS 5.9.384 allows attackers to access sensitive user information via supplying a crafted link.
EPSS Score: 0.06%
January 28th, 2025 (5 months ago)
|